=== WP Tweaks ===
Contributors: luizbills
Tags: security, performance, tweaks, optimization, xmlrpc, emoji
Donate link: https://www.luizpb.com/donate/
Requires at least: 4.0
Tested up to: 6.3
Requires PHP: 7.4
Stable tag: 2.2.0
License: GPLv3
License URI: http://www.gnu.org/licenses/gpl-3.0.html
Several opinionated WordPress tweaks focused in security and performance.
== Description ==
Several opinionated WordPress tweaks focused in security and performance.
= FEATURES =
* Produces clean filenames for uploads
* Change admin footer text
* Disable author page and author search by url
* Disable emoji mess
* Disable "meta widget"
* Disable WP REST API public access
* Disable "website" field from comment form
* Disable wp embed
* Disable xmlrpc.php
* Show admin bar for admin users only
* Hide WordPress update nag to all but admins
* Remove "WordPress logo" from admin bar
* Remove "+ New" button from admin bar
* Remove some dashboard widgets
* Remove query strings from scripts (JavaScript and CSS)
* Remove <link rel="shortlink" >
* Remove dashboard "welcome panel"
* Remove WordPress version number in <head>
* and more...
**Note**: is possible disable any feature.
= Contribuitions =
For bugs, suggestions or contribuitions, open a issue in our [Github Repository](https://github.com/luizbills/wp-tweaks/issues) or create a topic in [WordPress Plugin Forum](https://wordpress.org/support/plugin/wp-tweaks/).
= Donations =
Support this plugin on [https://luizpb.com/donate/](https://luizpb.com/donate/)
== Installation ==
1. Install the plugin through the WordPress plugins screen directly.
1. Activate the plugin through the "Plugins" screen in WordPress.
1. Go to Settings > Tweaks to configure the plugin.
== Changelog ==
= 2.2.0 - 2023-09-21 =
- New security header: "Referrer-Policy" (value: `strict-origin-when-cross-origin`)
- New security header: "Permissions-Policy" (value: `geolocation=(), microphone=(), camera=(), interest-cohort=()`)
= 2.1.0 - 2023-09-19 =
* Option to disable comments (only in pages and blog posts)
* Option to hide annoying messages in admin panel
* Warns when **WP_DEVELOPMENT_MODE** constant is activated
= 2.0.0 - 2023-08-22 =
* The plugin now requires PHP 7.4+
* Clear the plugin options when the plugin is uninstalled.
* Option to display PHP version in admin footer
* Option to disable or limit the Heartbeat API
= 1.9.2 - 2023-01-18 =
* Fix settings link.
= 1.9.1 - 2023-01-11 =
* Removed "Disallow your site in iframes" option. Utilize the "Security Headers" option instead.
= 1.9.0 - 2023-01-10 =
* Feature: Disable jQuery Migrate (enabled by default).
* Feature: Security Headers (disabled by default).
* Tweak: improve some options.
= 1.8.0 - 2022-12-11 =
* Security: Now is possible disallow to render your site in a ``, `